Local File Inclusion vulnerability in Ready's attachment...
High severity
Unreviewed
Published
Apr 16, 2025
to the GitHub Advisory Database
•
Updated Apr 16, 2025
Description
Published by the National Vulnerability Database
Apr 16, 2025
Published to the GitHub Advisory Database
Apr 16, 2025
Last updated
Apr 16, 2025
Local File Inclusion vulnerability in Ready's attachment upload panel allows low privileged user to provide link to a local file using the file:// protocol thus allowing the attacker to read content of the file. This vulnerability can be use to read content of system files.
References